HTTP/1.1 200 OK
Vary: Accept-Encoding
X-WebKit-CSP: default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' www.google-analytics.com ajax.googleapis.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://static.addtoany.com/ http://clients1.google.com/complete/ https://js-agent.newrelic.com/ https://bam.nr-data.net/ https://www.google.com;; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://static.addtoany.com/; img-src 'self' https://www.google-analytics.com data: https://www.google.com/recaptcha/ http://www.ecb.int/ http://www.ecb.europa.eu/; frame-src 'self' https://www.google.com/recaptcha/ https://www.youtube.com/ https://static.addtoany.com/ https://maps.google.be/maps/ https://www.google.com/maps/ https://mapsengine.google.com/ http://www.new-euro-banknotes.eu/; font-src 'self' https://fonts.gstatic.com; report-uri /admin/config/system/seckit/csp-report
Strict-Transport-Security: max-age=31536000; includeSubDomains
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Public-Key-Pins: pin-sha256="h4iuOQmlSUlktv70wMYQNQSiw9ve72xhQ9/vbSXQe+c="; max-age=31536000; includeSubdomains
Etag: "1491676211-1"
X-Frame-Options: SameOrigin
Vary: Cookie,Accept-Encoding
X-XSS-Protection: 1; mode=block
X-Content-Security-Policy: default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' www.google-analytics.com ajax.googleapis.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://static.addtoany.com/ http://clients1.google.com/complete/ https://js-agent.newrelic.com/ https://bam.nr-data.net/ https://www.google.com;; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://static.addtoany.com/; img-src 'self' https://www.google-analytics.com data: https://www.google.com/recaptcha/ http://www.ecb.int/ http://www.ecb.europa.eu/; frame-src 'self' https://www.google.com/recaptcha/ https://www.youtube.com/ https://static.addtoany.com/ https://maps.google.be/maps/ https://www.google.com/maps/ https://mapsengine.google.com/ http://www.new-euro-banknotes.eu/; font-src 'self' https://fonts.gstatic.com; report-uri /admin/config/system/seckit/csp-report
X-Content-Type-Options: nosniff
Content-Security-Policy: default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' www.google-analytics.com ajax.googleapis.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ https://static.addtoany.com/ http://clients1.google.com/complete/ https://js-agent.newrelic.com/ https://bam.nr-data.net/ https://www.google.com;; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://static.addtoany.com/; img-src 'self' https://www.google-analytics.com data: https://www.google.com/recaptcha/ http://www.ecb.int/ http://www.ecb.europa.eu/; frame-src 'self' https://www.google.com/recaptcha/ https://www.youtube.com/ https://static.addtoany.com/ https://maps.google.be/maps/ https://www.google.com/maps/ https://mapsengine.google.com/ http://www.new-euro-banknotes.eu/; font-src 'self' https://fonts.gstatic.com; report-uri /admin/config/system/seckit/csp-report
X-UA-Compatible: IE=edge,chrome=1
Environment: pro
Last-Modified: Sat, 08 Apr 2017 18:30:11 GMT
Content-Type: text/html; charset=utf-8
Content-Language: en
Connection: keep-alive
Transfer-Encoding: chunked
Server: nginx
X-Cache: cached
Date: Sat, 08 Apr 2017 20:35:01 GMT
Cache-Control: public, max-age=600, s-maxage=14400
Age: 7490